Vulnerabilities > E107Coders
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2009-03-06 | CVE-2008-6438 | SQL Injection vulnerability in E107Coders Macguru Blog Engine Plugin 2.2 SQL injection vulnerability in macgurublog_menu/macgurublog.php in the MacGuru BLOG Engine plugin 2.2 for e107 allows remote attackers to execute arbitrary SQL commands via the uid parameter, a different vector than CVE-2008-2455. | 7.5 |
2008-05-27 | CVE-2008-2455 | SQL Injection vulnerability in E107Coders E107 Blog Engine 2.2 SQL injection vulnerability in comment.php in the MacGuru BLOG Engine plugin 2.2 for e107 allows remote attackers to execute arbitrary SQL commands via the rid parameter. | 7.5 |